我正在使用NTLMv1,它工作得很好。唯一的缺点是,如果我登录了一次,那么它就会访问LDAP服务器3到4次。
所以我不想这样。有人能给我解释一下这个过程是如何在NTLMv2中实现的吗?
以下是NTLMv2的代码
<filter>
<filter-name>ntlmv2-auth</filter-name>
<filter-class>org.ntlmv2.filter.NtlmFilter</filter-class>
<init-param>
<!-- Windows domain name -->
<param-name>ntlm-domain</param-name>
<param-value>ACME.CORP</param-value>
</init-param>
<init-param>
<!-- IP-address of domain controller -->
<param-name>ntlm-dc</param-name>
<param-value>dcone.acme.com</param-value>
</init-param>
<init-param>
<!-- Simple (non-FQDN) hostname of DC host -->
<param-name>ntlm-dc-name</param-name>
<param-value>dcone</param-value>
</init-param>
<init-param>
<!-- Computer account for connection to DC -->
<param-name>ntlm-account</param-name>
<param-value>TECHUSER$@ACME.CORP</param-value>
</init-param>
<init-param>
<!-- Password of computer account -->
<param-name>ntlm-password</param-name>
<param-value>test1234</param-value>
</init-param>
</filter>
<filter-mapping>
<filter-name>NTLMv2</filter-name>
<url-pattern>/*</url-pattern>
</filter-mapping>发布于 2014-10-20 22:56:26
答案是您无法避免重复的LDAP连接,因为NTLM协议正是为此而设计的。您可以在Microsoft Page defining the NTLM Protocol上找到更多信息
https://stackoverflow.com/questions/21178761
复制相似问题